CVE-2021-22356
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
There is a weak secure algorithm vulnerability in Huawei products. A weak secure algorithm is used in a module. Attackers can exploit this vulnerability by capturing and analyzing the messages between devices to obtain information. This can lead to information leak.Affected product versions include: IPS Module V500R005C00SPC100, V500R005C00SPC200; NGFW Module V500R005C00SPC100, V500R005C00SPC200; Secospace USG6300 V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, V500R005C00SPC100, V500R005C00SPC200; Secospace USG6500 V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, V500R005C00SPC100, V500R005C00SPC200; Secospace USG6600 V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, V500R005C00SPC100, V500R005C00SPC200; USG9500 V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, V500R005C00SPC100, V500R005C00SPC200.
Se presenta una vulnerabilidad de algoritmo seguro débil en los productos de Huawei. Es usado un algoritmo seguro débil en un módulo. Los atacantes pueden explotar esta vulnerabilidad al capturar y analizar los mensajes entre dispositivos para obtener información. Esto puede conllevar una fuga de información. Las versiones de producto afectadas incluyen: Módulo IPS V500R005C00SPC100, V500R005C00SPC200; Módulo NGFW V500R005C00SPC100, V500R005C00SPC200; Secospace USG6300 V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, V500R005C00SPC100, V500R005C00SPC200; Secospace USG6500 V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, V500R005C00SPC100, V500R005C00SPC200; Secospace USG6600 V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, V500R005C00SPC100, V500R005C00SPC200; USG9500 V500R001C30SPC200, V500R001C30SPC600, V500R001C60SPC500, V500R005C00SPC100, V500R005C00SPC200
CVSS Scores
SSVC
- Decision:-
Timeline
- 2021-01-05 CVE Reserved
- 2021-11-23 CVE Published
- 2024-08-03 CVE Updated
- 2024-08-08 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-327: Use of a Broken or Risky Cryptographic Algorithm
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20210512-01-infomationleak-en | 2021-11-29 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Huawei Search vendor "Huawei" | Ips Module Firmware Search vendor "Huawei" for product "Ips Module Firmware" | v500r005c00spc100 Search vendor "Huawei" for product "Ips Module Firmware" and version "v500r005c00spc100" | - |
Affected
| in | Huawei Search vendor "Huawei" | Ips Module Search vendor "Huawei" for product "Ips Module" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Ips Module Firmware Search vendor "Huawei" for product "Ips Module Firmware" | v500r005c00spc200 Search vendor "Huawei" for product "Ips Module Firmware" and version "v500r005c00spc200" | - |
Affected
| in | Huawei Search vendor "Huawei" | Ips Module Search vendor "Huawei" for product "Ips Module" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Ngfw Module Firmware Search vendor "Huawei" for product "Ngfw Module Firmware" | v500r005c00spc100 Search vendor "Huawei" for product "Ngfw Module Firmware" and version "v500r005c00spc100" | - |
Affected
| in | Huawei Search vendor "Huawei" | Ngfw Module Search vendor "Huawei" for product "Ngfw Module" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Ngfw Module Firmware Search vendor "Huawei" for product "Ngfw Module Firmware" | v500r005c00spc200 Search vendor "Huawei" for product "Ngfw Module Firmware" and version "v500r005c00spc200" | - |
Affected
| in | Huawei Search vendor "Huawei" | Ngfw Module Search vendor "Huawei" for product "Ngfw Module" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6300 Firmware Search vendor "Huawei" for product "Secospace Usg6300 Firmware" | v500r001c30spc200 Search vendor "Huawei" for product "Secospace Usg6300 Firmware" and version "v500r001c30spc200" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6300 Search vendor "Huawei" for product "Secospace Usg6300" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6300 Firmware Search vendor "Huawei" for product "Secospace Usg6300 Firmware" | v500r001c30spc600 Search vendor "Huawei" for product "Secospace Usg6300 Firmware" and version "v500r001c30spc600" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6300 Search vendor "Huawei" for product "Secospace Usg6300" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6300 Firmware Search vendor "Huawei" for product "Secospace Usg6300 Firmware" | v500r001c60spc500 Search vendor "Huawei" for product "Secospace Usg6300 Firmware" and version "v500r001c60spc500" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6300 Search vendor "Huawei" for product "Secospace Usg6300" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6300 Firmware Search vendor "Huawei" for product "Secospace Usg6300 Firmware" | v500r005c00spc100 Search vendor "Huawei" for product "Secospace Usg6300 Firmware" and version "v500r005c00spc100" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6300 Search vendor "Huawei" for product "Secospace Usg6300" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6300 Firmware Search vendor "Huawei" for product "Secospace Usg6300 Firmware" | v500r005c00spc200 Search vendor "Huawei" for product "Secospace Usg6300 Firmware" and version "v500r005c00spc200" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6300 Search vendor "Huawei" for product "Secospace Usg6300" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6500 Firmware Search vendor "Huawei" for product "Secospace Usg6500 Firmware" | v500r001c30spc200 Search vendor "Huawei" for product "Secospace Usg6500 Firmware" and version "v500r001c30spc200" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6500 Search vendor "Huawei" for product "Secospace Usg6500" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6500 Firmware Search vendor "Huawei" for product "Secospace Usg6500 Firmware" | v500r001c30spc600 Search vendor "Huawei" for product "Secospace Usg6500 Firmware" and version "v500r001c30spc600" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6500 Search vendor "Huawei" for product "Secospace Usg6500" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6500 Firmware Search vendor "Huawei" for product "Secospace Usg6500 Firmware" | v500r001c60spc500 Search vendor "Huawei" for product "Secospace Usg6500 Firmware" and version "v500r001c60spc500" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6500 Search vendor "Huawei" for product "Secospace Usg6500" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6500 Firmware Search vendor "Huawei" for product "Secospace Usg6500 Firmware" | v500r005c00spc100 Search vendor "Huawei" for product "Secospace Usg6500 Firmware" and version "v500r005c00spc100" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6500 Search vendor "Huawei" for product "Secospace Usg6500" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6500 Firmware Search vendor "Huawei" for product "Secospace Usg6500 Firmware" | v500r005c00spc200 Search vendor "Huawei" for product "Secospace Usg6500 Firmware" and version "v500r005c00spc200" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6500 Search vendor "Huawei" for product "Secospace Usg6500" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6600 Firmware Search vendor "Huawei" for product "Secospace Usg6600 Firmware" | v500r001c30spc200 Search vendor "Huawei" for product "Secospace Usg6600 Firmware" and version "v500r001c30spc200" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6600 Search vendor "Huawei" for product "Secospace Usg6600" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6600 Firmware Search vendor "Huawei" for product "Secospace Usg6600 Firmware" | v500r001c30spc600 Search vendor "Huawei" for product "Secospace Usg6600 Firmware" and version "v500r001c30spc600" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6600 Search vendor "Huawei" for product "Secospace Usg6600" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6600 Firmware Search vendor "Huawei" for product "Secospace Usg6600 Firmware" | v500r001c60spc500 Search vendor "Huawei" for product "Secospace Usg6600 Firmware" and version "v500r001c60spc500" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6600 Search vendor "Huawei" for product "Secospace Usg6600" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6600 Firmware Search vendor "Huawei" for product "Secospace Usg6600 Firmware" | v500r005c00spc100 Search vendor "Huawei" for product "Secospace Usg6600 Firmware" and version "v500r005c00spc100" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6600 Search vendor "Huawei" for product "Secospace Usg6600" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Secospace Usg6600 Firmware Search vendor "Huawei" for product "Secospace Usg6600 Firmware" | v500r005c00spc200 Search vendor "Huawei" for product "Secospace Usg6600 Firmware" and version "v500r005c00spc200" | - |
Affected
| in | Huawei Search vendor "Huawei" | Secospace Usg6600 Search vendor "Huawei" for product "Secospace Usg6600" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Usg9500 Firmware Search vendor "Huawei" for product "Usg9500 Firmware" | v500r001c30spc200 Search vendor "Huawei" for product "Usg9500 Firmware" and version "v500r001c30spc200" | - |
Affected
| in | Huawei Search vendor "Huawei" | Usg9500 Search vendor "Huawei" for product "Usg9500" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Usg9500 Firmware Search vendor "Huawei" for product "Usg9500 Firmware" | v500r001c30spc600 Search vendor "Huawei" for product "Usg9500 Firmware" and version "v500r001c30spc600" | - |
Affected
| in | Huawei Search vendor "Huawei" | Usg9500 Search vendor "Huawei" for product "Usg9500" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Usg9500 Firmware Search vendor "Huawei" for product "Usg9500 Firmware" | v500r001c60spc500 Search vendor "Huawei" for product "Usg9500 Firmware" and version "v500r001c60spc500" | - |
Affected
| in | Huawei Search vendor "Huawei" | Usg9500 Search vendor "Huawei" for product "Usg9500" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Usg9500 Firmware Search vendor "Huawei" for product "Usg9500 Firmware" | v500r005c00spc100 Search vendor "Huawei" for product "Usg9500 Firmware" and version "v500r005c00spc100" | - |
Affected
| in | Huawei Search vendor "Huawei" | Usg9500 Search vendor "Huawei" for product "Usg9500" | - | - |
Safe
|
Huawei Search vendor "Huawei" | Usg9500 Firmware Search vendor "Huawei" for product "Usg9500 Firmware" | v500r005c00spc200 Search vendor "Huawei" for product "Usg9500 Firmware" and version "v500r005c00spc200" | - |
Affected
| in | Huawei Search vendor "Huawei" | Usg9500 Search vendor "Huawei" for product "Usg9500" | - | - |
Safe
|